• Stars
    star
    8
  • Rank 2,099,232 (Top 42 %)
  • Language
    C++
  • Created almost 10 years ago
  • Updated almost 10 years ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

Scoped Resource - Generic RAII Wrapper for the Standard Library by Peter Sommerlad and Andrew L. Sandoval

More Repositories

1

HyperPlatform

Intel VT-x based hypervisor aiming to provide a thin VM-exit filtering platform on Windows.
C++
1,519
star
2

DdiMon

Monitoring and controlling kernel API calls with stealth hook using EPT
C++
1,146
star
3

Hypervisor-101-in-Rust

The materials of "Hypervisor 101 in Rust", a one-day long course, to quickly learn hardware-assisted virtualization technology and its application for high-performance fuzzing on Intel/AMD processors.
Rust
981
star
4

MiniVisorPkg

The research UEFI hypervisor that supports booting an operating system.
C
546
star
5

SimpleSvmHook

SimpleSvmHook is a research purpose hypervisor for Windows on AMD processors.
C++
351
star
6

SimpleSvm

A minimalistic educational hypervisor for Windows on AMD processors.
C++
317
star
7

PgResarch

PatchGuard Research
C++
288
star
8

ExploitCapcom

This is a standalone exploit for a vulnerable feature in Capcom.sys
C++
280
star
9

MemoryMon

Detecting execution of kernel memory where is not backed by any image file
C++
252
star
10

DotNetHooking

Sample use cases of the .NET native code hooking technique
C#
201
star
11

barevisor

A bare minimum hypervisor on AMD and Intel processors for learners.
Rust
189
star
12

scripts_for_RE

Python scripts for reverse engineering.
Python
178
star
13

GuardMon

Hypervisor based tool for monitoring system register accesses.
C++
140
star
14

UefiVarMonitor

The runtime DXE driver monitoring access to the UEFI variables by hooking the runtime service table.
C
136
star
15

SmmExploit

The report and the exploit of CVE-2021-26943, the kernel-to-SMM local privilege escalation vulnerability in ASUS UX360CA BIOS version 303.
133
star
16

hvext

The Windbg extension that implements commands helpful to study Hyper-V on Intel processors.
JavaScript
126
star
17

EopMon

Elevation of privilege detector based on HyperPlatform
C++
117
star
18

Sushi

a Japanese food keeps you sane
C++
117
star
19

findpg

Windbg extension to find PatchGuard pages
C++
116
star
20

UEFI-BIOS-Security

Security Camp 2021 & GCC 2022
111
star
21

WinIoCtlDecoder

IDA Plugin which decodes Windows Device I/O control code into DeviceType, FunctionCode, AccessType and MethodType.
Python
106
star
22

FU_Hypervisor

A hypervisor hiding user-mode memory using EPT
C
104
star
23

WPBT-Builder

The simple UEFI application to create a Windows Platform Binary Table (WPBT) from the UEFI shell.
C
100
star
24

HelloSmm

This is an instruction to run your own SMM code.
C
100
star
25

DebugLogger

A software driver that lets you log kernel-mode debug output into a file on Windows.
C++
97
star
26

Hello-VT-rp

A simple hypervisor demonstrating the use of the Intel VT-rp (redirect protection) technology.
Rust
91
star
27

kraft_dinner

Tool to dump UEFI runtime drivers implementing runtime services for Windows
C
90
star
28

HelloAmdHvPkg

HelloAmdHvPkg is a type-1 research hypervisor for AMD processors.
C
86
star
29

CVE-2023-36427

Report and exploit of CVE-2023-36427
C++
86
star
30

Scavenger

A minifilter driver preserves all modified and deleted files.
C
77
star
31

RemoteWriteMonitor

A tool to help malware analysts tell that the sample is injecting code into other process.
C++
74
star
32

meow

nyā
C++
70
star
33

HelloIommuPkg

The sample DXE runtime driver demonstrating how to program DMA remapping.
C
57
star
34

DumpVTable

Generates a Python script to give public interface names in an ActiveX file to an IDB file.
C++
47
star
35

DrvLoader

A command line tool to load and unload a device driver.
C++
42
star
36

CVE-2022-25949

A years-old exploit of a local EoP vulnerability in Kingsoft Antivirus KWatch Driver version 2009.3.17.77.
C++
35
star
37

cs_driver

A sample project for using Capstone from a driver in Visual Studio 2015
C
34
star
38

CVE-2024-21305

Report and exploit of CVE-2024-21305.
C++
30
star
39

CVE-2014-0816

CVE-2014-0816
C++
24
star
40

tandasat.github.io

HTML
17
star
41

hyperplatform_log_parser

User-mode program parsing logs created by HyperPlatform
C++
17
star
42

ProjectLoadTimeMonitor

The Visual Studio extension that measures load time of each project when a solution file is opened.
C#
16
star
43

recon2024_demo

Provides commands to read from and write to arbitrary kernel-mode memory for users with the Administrator privilege. HVCI compatible. No test signing mode is required.
C++
14
star
44

CheckSDL

A tool evaluates security configurations of a given PE based on SDL without source code
C++
12
star
45

ListWorkItems

Lists work items being queued currently.
C++
12
star
46

DeviceOpener

A command line tool to check if a specified device is accessible.
C++
10
star
47

List-UEFI-Configuration-Tables

List UEFI Configuration Tables
Rust
10
star
48

windbg_init

Windbg Init Script
9
star
49

win32_debugout

Shows debug strings on DebubView from an attached process by win32_remote.exe.
C++
8
star
50

ping_vmm

A user-mode program knocking at HyperPlatform's "backdoor"
C++
7
star
51

SecRuntimeSample

A sample usege of SecRuntime.dll on Windows Phone
C++
4
star
52

blog

Ruby
4
star
53

CopyFiles

Copy files onto the IsolatedStorage so that you can download them using IsoStoreSpy.
C#
3
star
54

mylight

Using LED of Samsung Galaxy Ace S5830
Java
2
star
55

tandasat

2
star
56

shared

Manages files that are shared with multiple boxes.
Vim Script
1
star